4.3
CVE-2018-1587
- EPSS 0.15%
- Published 19.07.2018 14:29:00
- Last modified 21.11.2024 04:00:02
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM Rational Rhapsody Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.5 and IBM Rational Software Architect Design Manager 5.0 through 5.0.2 and 6.0 through 6.0.1 could reveal technical error messages to allow an adversary to gain information about the application and database that could be used to conduct further attacks. IBM X-Force ID: 143500.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Rational Rhapsody Design Manager Version >= 5.0 <= 5.0.2
Ibm ≫ Rational Rhapsody Design Manager Version >= 6.0 <= 6.0.5
Ibm ≫ Rational Software Architect Design Manager Version >= 5.0 <= 5.0.2
Ibm ≫ Rational Software Architect Design Manager Version >= 6.0 <= 6.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.323 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
psirt@us.ibm.com | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.